Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

凉风

Pesquisador de凉风刨洞安全团队
#43918de 53,635
6.1CVSS total
Vulnerabilidades · 1
PT-2023-27077
6.1
2023-09-01
Typora · Typora · CVE-2023-39703
**Name of the Vulnerable Software and Affected Versions** Typora version 1.6.7 **Description** A cross site scripting (XSS) issue in the Markdown Editor component allows attackers to execute arbitrary code via uploading a crafted Markdown file. **Recommendations** For Typora version 1.6.7, consider disabling the Markdown Editor component until a patch is available to prevent exploitation.